Security Analyst - Project Lead

InterBase Corporation
Columbia, SC, United States
2 months ago

Role details

Contract type
Temporary to permanent
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
2 years minimum
Working hours
Regular working hours
Job source

Tech stack

Active Directory ARM Architecture Cyber Security Monitoring of Systems Intrusion Detection and Prevention Intrusion Detection Systems Virtual Private Networks (VPN) Network Planning and Design Network Administration Phishing Security Information and Event Management Mitre Att&ck
+3 more
Firewalls (Computer Science) Drilldown 3-tier Architectures

Job description

The position will work as an Tier 2 SOC Analyst for the Division of Information Security. This role will focus on supporting security monitoring, threat detection, security incident response and security investigations. Engaging directly with state agencies to promote, support, and improve adoption of centralized security services is a key focus. The engagement is expected to be needed for 12 months with the possibility of extension.

Daily Duties / Responsibilities:

PREFERENCE WILL BE GIVEN TO A CANDIDATE WHO CAN WORK ONSITE OVER HYBRID AND OVER FULL-TIME REMOTE (ON-SITE AS NEEDED).

  • Continuously review and correlate security event data across SIEM, EDR, IDS/IPS, and threat intelligence sources to identify complex attack patterns, emerging threats, and security incidents.
  • Perform deep-dive analysis of suspicious activity, validate incidents, determine root cause and impact, and escalate critical incidents with detailed context to Tier 3 as required.
  • Create detailed incident reports, timelines, and post-incident summaries; contribute to lessons-learned documentation and recommendations for remediation and preventative measures.
  • Investigate user-reported phishing, malware infections, and potential policy violations; advise users and internal/external teams on containment and recovery actions.
  • Recommend updates to SOC playbooks and workflows based on real-world INVESTIGATIONS, fine-tune detection rules. Alert thresholds, and correlation logic to reduce false positives and improve threat coverage.
  • Collaborate with engineering teams to ensure monitoring tools are properly configured and tuned. Integrate new threat intelligence feeds into workflows and proactively hunt for threats using up-to date tactics, techniques, and procedures (TTPs)
  • Serve as a customer-facing SME, selling the value of DIS services by demonstrating capabilities and resolving issues.
  • Document processes, runbooks, and troubleshooting steps related to SOC operations.
  • Coordinate with engineering, SOC, and agency staff as needed to meet goals.
  • Other duties as needed.

Requirements

2+ Years of Experience with Security Monitoring and Incident Response

2+ Years of Experience with MITRE ATT&CK framework.

2+ Years of Experience with dashboard creation and reporting

Prefrred skills

Experience with the Palo Alto Cortex XSIAM/XDR platform.

Knowledge of Linux network administration and network design.

Experience in administration of firewalls, VPN technology, Active Directory, Intrusion Detection/Prevention systems.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dice.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:38 min

Using language models to self-detect and flag software vulnerabilities

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · WWC Europe 2026

1:29 min

Evaluating phishing emails that leverage artificial time constraints

Mauro Verderosa · LIVE

14:14 min

Addressing audience inquiries on analytical implementation and career growth

Julian Joseph · LIVE

2:39 min

Exposing stored XSS and phishing attacks via markdown

Ramona Schwering Ramona Schwering · WWC Europe 2026

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

2:04 min

Designing an automated phishing attack pipeline

Wolfgang Ettlinger +1 · WWC 2023

Videos

See all

Related articles

See all